Medium severity5.3NVD Advisory· Published Jan 2, 2017· Updated Jun 17, 2026
CVE-2016-10099
CVE-2016-10099
Description
Borg (aka BorgBackup) before 1.0.9 has a flaw in the cryptographic protocol used to authenticate the manifest (list of archives), potentially allowing an attacker to spoof the list of archives.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:borg_project:borg:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:borg_project:borg:*:*:*:*:*:*:*:*range: <=1.0.8
- (no CPE)range: <1.0.9
- Range: <1.0.9
Patches
Vulnerability mechanics
References
2- borgbackup.readthedocs.io/en/stable/changes.htmlnvdMitigationVendor Advisory
- www.securityfocus.com/bid/95205nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.